Splunk Search

Can we create a gannt chart?

walterleunghk
Explorer

I have data like below:

time Username Status

2013/01/01 00:00:00 UserA Active

2013/01/01 00:30:00 UserA Active

2013/01/01 01:00:00 UserA Active

2013/01/01 00:30:00 UserB Active

2013/01/01 01:00:00 UserB Active

Can we create a gannt chart like below?

UserA |xxxoooooooooooooooooooooooooooooooooooooooooo

UserB |oxxoooooooooooooooooooooooooooooooooooooooooo


                 Time
Tags (2)

jtrucks
Splunk Employee
Splunk Employee

The built-in visualization tools can't really do this for you.

You can likely do it with the Splunk Web Framework, which uses Django and multiple externally available visualization libraries for doing more complex and dynamic charting.

If you want something vaguely similar, you might want to look at doing a chart split by Username, and then do a Column chart with the Formatting options "Multi-series mode" set to "Split" It might be unideal, but it may be something close to what you need.

--
Jesse Trucks
Minister of Magic
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...